Government Use of Cloud Computing Legal Challenges

Size: px
Start display at page:

Download "Government Use of Cloud Computing Legal Challenges"

Transcription

1 Government Use of Cloud Computing Legal Challenges Liesbeth Hellemans ICRI/CIR KU Leuven IAPP Europe Data Protection Congress

2 Agenda 1. Cloud for Europe project 2. Legal Challenges of Public Sector Cloud Computing 3. Legal recommendations for Public Sector Cloud Computing Policy-oriented In practice 2

3

4 Public sector cloud use as a collaboration between public authorities and industry through pre-commercial procurement 4

5 Mission Cloud for Europe brings together public authorities and industry to support public sector cloud use. Identify obstacles for cloud use in the public sector Define services that overcome those obstacles Procure research from industry to find innovative solutions for cloud services 5

6 Partners

7 Legal challenges of Public Sector Cloud Computing 7

8 Methodology Literature overview (current & future legal framework) Due diligence consortium partners Austria, Belgium, Portugal, Spain, The Netherlands, Norway Public sector aspects - Languages - Public procurement - Archiving - Procedural law (criminal and social) - Medical law - Bookkeeping/fiscal - National Defense and State secrets Legal challenges experienced by consortium partners 8

9 Categories of challenges 2 categories Common to most cloud services Public sector specific Non-exhaustive 9

10 Legal challenges common to most cloud services Applicable law & jurisdiction Consumer Protection Data Protection Government cloud Data Portability/ Interoperability Contractual framework Liabiility

11 Public Sector specific legal challenges Governmental Access Legislation discouraging cloud transfer Inaccurate Procurement legislation Government cloud Fragmented and divering national legislation Language requirements National defense/state secrets

12 Legal Recommendations for Public Sector Cloud Computing 12

13 13 Policy - oriented

14 Regulatory Review, clarify and harmonize legislation in public domain related areas to make it cloud-friendly Address the issues on governmental environment and intelligence gathering at European and international level Issue clear guidelines when uncertainty on the conditions of cloud use Further harmonize and simplify public procurement rules Set up a cross-border working group between legal specialists and technological teams to address encryption standards Further harmonize and modify data protection legislation to reflect the reality of cloud computing Set up a code of conduct for governments as Cloud Consumers, providing for a clear overview of cloud prerequisites for the public sector, including a set of minimum contractual standards Set up a code of conduct to provide guidelines in the relationship Public Authority Cloud End User 14

15 Legislation Execution Cloud Services Develop Legislation Executing Cloud Services addressing and overcoming legal cloud barriers by accomplishing certain legal requirements 15

16 16 In practice

17 Key attention points Cross-border cloud: set up a contractual collaboration model between governments (liability!) Federal/regional cloud: set up a contractual collaboration model between the various government Assess the needs and practical way of working (call-offs?) Comply with local Public Procurement legislation Conduct a comprehensive and thorough risk analysis Sensitivity of the data? Indicate and specify the location of the data centres Preference Europe Transfer outside the EEA? Location support services? Segregate the duties sufficiently Division of cloud project in various lots 17

18 Key attention points Define language requirements Pay specific attention to the danger of lock-in stand-by Cloud Provider? Encrypt all data and ensure the encryption key sits with the public authorities Choose a Cloud Provider that complies with data protection legislation (third party certification) Define appropriate minimum SLA s Sign an appropriate contractual framework addressing both general contract and data privacy requirements Negotiate Unlimited access to the data Accountability rules Data protection concerns Address Cloud End User concerns Security/confidentiality/IPR/privacy protection data protection policy Redress mechanisms 18

19 19 Source?

20 Downloads: Legal Implications of Cloud Computing Contact: 20

21

Cloud for Europe trusted Cloud Services for the European market for public administrations

Cloud for Europe trusted Cloud Services for the European market for public administrations Cloud for Europe trusted Cloud Services for the European market for public administrations Public sector challenges (European egovernment Action Plan 2011-2015) 2 Establishing a Trusted Cloud Europe A

More information

Boosting Productivity and Innovation Through. Public Sector Compliant Cloud Services

Boosting Productivity and Innovation Through. Public Sector Compliant Cloud Services Boosting Productivity and Innovation Through Public Sector Compliant Cloud Services dr. Mišo Vukadinović IT and e-services Directorate Ministry of the Interior, Slovenia September 26, 2014 Agenda Cloud

More information

Cloud for Europe lessons learned

Cloud for Europe lessons learned Cloud for Europe lessons learned Public sector challenges (European egovernment Action Plan 2011-2015) 2 Elevator Pitch Public sector cloud use as a collaboration between public authorities and industry

More information

Cloud for Europe (interim) lessons learned

Cloud for Europe (interim) lessons learned Cloud for Europe (interim) lessons learned Our Mission Cloud for Europe brings together public authorities and industry to support public sector cloud use. Identify obstacles for cloud use in the public

More information

How To Secure Your Cloud In A Private Cloud

How To Secure Your Cloud In A Private Cloud Cloud Computing: Blue skies or Tornadoes? Peter Strickx IAPP 19/11/2014 Fedict 2009. All rights reserved Agenda Context On the Road The Storm End of the Journey Lessons learned Conclusion Fedict 2009.

More information

Some Public Sector Cloud Views

Some Public Sector Cloud Views Some Public Sector Cloud Views Herbert.Leitold@a-sit.at Digital Enterprise Europe, London, June 11 th, 2014 Zentrum für sichere Informationstechnologie - Austria Expectations and Take Up some are high

More information

Cloud for Europe challenging the European market for public administrations

Cloud for Europe challenging the European market for public administrations Cloud for Europe challenging the European market for public administrations Luís Horta " Santiago, Chile 04.02.2014 Elevator Pitch Public sector Cloud use as a collaboration between public authorities

More information

THE CLOUD: OPPORTUNITIES AND ISSUES

THE CLOUD: OPPORTUNITIES AND ISSUES THE CLOUD: OPPORTUNITIES AND ISSUES OF IMMATERIALITY Alberto Pera Partner, Gianni Origoni Grippo Cappelli & Partners THE CLOUD IS A NO-LAND TERRITORY Data can be accessed and processed from anywhere via

More information

Unleashing the Potential of Cloud Computing in Europe - What is it and what does it mean for me?

Unleashing the Potential of Cloud Computing in Europe - What is it and what does it mean for me? EUROPEAN COMMISSION MEMO Brussels, 27 September 2012 Unleashing the Potential of Cloud Computing in Europe - What is it and what does it mean for me? See also IP/12/1025 What is Cloud Computing? Cloud

More information

Cloud Computing for the Public Sector in Central Europe the Legal Landscape. by Maciej Gawroński

Cloud Computing for the Public Sector in Central Europe the Legal Landscape. by Maciej Gawroński Cloud Computing for the Public Sector in Central Europe the Legal Landscape by Maciej Gawroński This paper examines B2G cloud computing services, where an awarding authority or awarding entity (in the

More information

Data Privacy in the Cloud E-Government Perspective

Data Privacy in the Cloud E-Government Perspective Data Privacy in the Cloud E-Government Perspective Herbert Leitold; EGIZ, A-SIT International Cloud Symposium 2011, Panel on Data Privacy and the Role Policy Plays in Defining Trust Requirements Ditton

More information

The Future of Cloud Computing: Elasticity, Legacy Support, Interoperability and Quality of Service

The Future of Cloud Computing: Elasticity, Legacy Support, Interoperability and Quality of Service The Future of Cloud Computing: Elasticity, Legacy Support, Interoperability and Quality of Service Introduction and overview of the workshop Alex Delis and Michael Pantazoglou, University of Athens www.sucreproject.eu

More information

LEGAL ISSUES IN CLOUD COMPUTING

LEGAL ISSUES IN CLOUD COMPUTING LEGAL ISSUES IN CLOUD COMPUTING RITAMBHARA AGRAWAL INTELLIGERE 1 CLOUD COMPUTING Cloud computing is a model for enabling convenient, on-demand network access to a shared pool of configurable computing

More information

Taking on the Cloud Challenge in Europe

Taking on the Cloud Challenge in Europe Taking on the Challenge in Europe scape VII Conference, Brussels Jonathan Sage Government and Regulatory Affairs Cyber Security and Policy Lead, Europe @jonathansage, uk.linkedin.com/in/jonathansageibm

More information

Daniel Field, Atos Spain. Towards the European Open Science Cloud, Heidelberg, 20/01/2016

Daniel Field, Atos Spain. Towards the European Open Science Cloud, Heidelberg, 20/01/2016 Daniel Field, Atos Spain Towards the European Open Science Cloud, Heidelberg, 20/01/2016 SLALOM is ready to use Cloud SLAs SLALOM will take theory to practice, providing a trusted verifiable starting point

More information

BEUC s contribution on Cloud Computing for the Public Hearing in the ITRE Committee, European Parliament, 29 May 2013

BEUC s contribution on Cloud Computing for the Public Hearing in the ITRE Committee, European Parliament, 29 May 2013 BEUC s contribution on Cloud Computing for the Public Hearing in the ITRE Committee, European Parliament, 29 May 2013 Contact: Digital and Consumer Contracts Teams digital@beuc.eu - consumercontracts@beuc.eu

More information

European Privacy Reporter

European Privacy Reporter Is this email not displaying correctly? Try the web version or print version. ISSUE 02 European Privacy Reporter An Update on Legal Developments in European Privacy and Data Protection November 2012 In

More information

(DRAFT)( 2 ) MOTION FOR A RESOLUTION

(DRAFT)( 2 ) MOTION FOR A RESOLUTION 05 Motions for resolutions, and other B8 documents 05_09. Motions to wind up debate on statements by other institutions: Rule 123(2) Cover page EUROPEAN PARLIAMENT 2014 2019 Plenary sitting [.2014] B[8-/2014](

More information

Removing barriers to Cloud Computing in Europe Open Workshop

Removing barriers to Cloud Computing in Europe Open Workshop Removing barriers to Cloud Computing in Europe Open Workshop SMART 2011/0045 - Open workshop By David Bradshaw, Gabriella Cattaneo, Giuliana Folco, IDC Thursday May 10, 2012- Brussels Copyright IDC. Reproduction

More information

Article 29 Working Party Issues Opinion on Cloud Computing

Article 29 Working Party Issues Opinion on Cloud Computing Client Alert Global Regulatory Enforcement If you have questions or would like additional information on the material covered in this Alert, please contact one of the authors: Cynthia O Donoghue Partner,

More information

Annex 1. Contract Checklist for Cloud-Based Genomic Research Version 1.0, 21 July 2015

Annex 1. Contract Checklist for Cloud-Based Genomic Research Version 1.0, 21 July 2015 Annex 1. Contract Checklist for Cloud-Based Genomic Research Version 1.0, 21 July 2015 The following comprises a checklist of areas that genomic research organizations or consortia (collectively referred

More information

COCIR* position on the certification of Healthcare IT product interoperability

COCIR* position on the certification of Healthcare IT product interoperability EUROPEAN COORDINATION COMMITTEE OF THE RADIOLOGICAL, ELECTROMEDICAL AND HEALTHCARE IT INDUSTRY COCIR Position Paper COCIR* position on the certification of Healthcare IT product interoperability The objective

More information

PICSE survey. (PICSE: Procurement Innovation for Cloud services in Europe)

PICSE survey. (PICSE: Procurement Innovation for Cloud services in Europe) PICSE survey (PICSE: Procurement Innovation for Cloud services in Europe) To ensure that Europe reaps the benefits of the shift to cloud computing, there is the need to focus on new ways of procuring cloud

More information

JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015

JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015 JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015 The following consists of the joint explanatory statement to accompany the Cybersecurity Act of 2015. This joint explanatory statement

More information

Procurement Innovation for Cloud Services in Europe

Procurement Innovation for Cloud Services in Europe Procurement Innovation for Cloud Services in Europe Bob Jones, CERN Robert.Jones cern.ch www.picse.eu @PICSEPROCURE PICSE Mission 12/06/2015 Open Standards for ICT Procurement, 12 June 2015, Brussels,

More information

The problem of cloud data governance

The problem of cloud data governance The problem of cloud data governance Vasilis Tountopoulos, Athens Technology Center S.A. (ATC) CSP EU Forum 2014 - Thursday, 22 nd May, 2014 Focus on data protection in the cloud Why data governance in

More information

Digital Agenda for Europe Cartagena de Indias, September 1, 2015

Digital Agenda for Europe Cartagena de Indias, September 1, 2015 Digital Agenda for Europe Cartagena de Indias, September 1, 2015 Javier Huerta Bravo From the Digital Agenda (2010)... Commission ICT strategy for 2010-2020 Problems identified: Lack of investment in networks

More information

Cloud Computing. by Civic Consulting (research conducted October 2011 January 2012)

Cloud Computing. by Civic Consulting (research conducted October 2011 January 2012) Cloud Computing by (research conducted October 2011 January 2012) for the European Parliament, DG Internal Policies of the Union, Directorate A (Economic and Scientific Policy); presentation for the EP

More information

Position Paper. Orgalime response to the Public consultation on the. collaborative economy - Digital Single Market Strategy follow up assessment

Position Paper. Orgalime response to the Public consultation on the. collaborative economy - Digital Single Market Strategy follow up assessment Position Paper Brussels, 23 December 2015 Orgalime response to the Public consultation on the regulatory environment for platforms, online intermediaries, data and cloud computing and the collaborative

More information

Response to the European Commission s consultation on the legal framework for the fundamental right to protection of personal data

Response to the European Commission s consultation on the legal framework for the fundamental right to protection of personal data Stockholm: Göteborg: Malmö: 105 24 Stockholm Box 57 Box 4221 Fax 08 640 94 02 401 20 Göteborg 203 13 Malmö Plusgiro: 12 41-9 Org. Nr: 556134-1248 www.intrum.se Bankgiro: 730-4124 info@se.intrum.com Response

More information

Privacy and Cloud Computing for Australian Government Agencies

Privacy and Cloud Computing for Australian Government Agencies Privacy and Cloud Computing for Australian Government Agencies Better Practice Guide February 2013 Version 1.1 Introduction Despite common perceptions, cloud computing has the potential to enhance privacy

More information

E-Signatures and E-Procurement

E-Signatures and E-Procurement E-Signatures and E-Procurement Dr. Annette Rosenkötter Rechtsanwältin Dr. Anja Hoffmann Rechtsanwältin FPS Rechtsanwälte und Notare Brüssel, 15.06.2011 Dieser Bericht ist nur für den Empfänger bestimmt.

More information

CLOUD COMPUTING Contractual and data protection aspects

CLOUD COMPUTING Contractual and data protection aspects CLOUD COMPUTING Contractual and data protection aspects Cloudscape VI 25 February 2014, Bruxelles Paolo Balboni Ph.D., Founding Partner, ICT Legal Consulting Domenico Converso LL.M., Senior Associate,

More information

Feasibility Study for a EU Pension Fund for Researchers. European Commission Research Directorate-General

Feasibility Study for a EU Pension Fund for Researchers. European Commission Research Directorate-General Feasibility Study for a EU Pension Fund for Researchers European Commission Research Directorate-General Executive Summary n RTD/DirC/C4/2009/026879 1 Executive Summary This report covers the main results

More information

European Users recommendations for the success of Public Cloud Computing in Europe. Cyril Bartolo Cloud Computing Council chairman 25-Nov-2014 v1b

European Users recommendations for the success of Public Cloud Computing in Europe. Cyril Bartolo Cloud Computing Council chairman 25-Nov-2014 v1b 1 European Users recommendations for the success of Public Cloud Computing in Europe Cyril Bartolo Cloud Computing Council chairman 25-Nov-2014 v1b 2 European CIO Association EuroCIO is created by CIOs

More information

ORGANISATION FOR ECONOMIC CO-OPERATION AND DEVELOPMENT

ORGANISATION FOR ECONOMIC CO-OPERATION AND DEVELOPMENT 2 OECD RECOMMENDATION OF THE COUNCIL FOR ENHANCED ACCESS AND MORE EFFECTIVE USE OF PUBLIC SECTOR INFORMATION ORGANISATION FOR ECONOMIC CO-OPERATION AND DEVELOPMENT The OECD is a unique forum where the

More information

COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34 COMMITTEE)

COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34 COMMITTEE) EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL Regulatory Policy Standardisation Brussels, 9 th November 2005 Doc.: 34/2005 Rev. 1 EN COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34

More information

TECHNICAL SPECIFICATION: LEGISLATION EXECUTING CLOUD SERVICES

TECHNICAL SPECIFICATION: LEGISLATION EXECUTING CLOUD SERVICES REALIZATION OF A RESEARCH AND DEVELOPMENT PROJECT (PRE-COMMERCIAL PROCUREMENT) ON CLOUD FOR EUROPE TECHNICAL SPECIFICATION: LEGISLATION EXECUTING CLOUD SERVICES ANNEX IV (D) TO THE CONTRACT NOTICE TENDER

More information

EU Data Protection Directive and U.S. Safe Harbor Framework: An Employer Update. By Stephen H. LaCount, Esq.

EU Data Protection Directive and U.S. Safe Harbor Framework: An Employer Update. By Stephen H. LaCount, Esq. EU Data Protection Directive and U.S. Safe Harbor Framework: An Employer Update By Stephen H. LaCount, Esq. Overview The European Union Data Protection Directive 95/46/EC ( Directive ) went effective in

More information

Procurement Innovation for Cloud Services in Europe

Procurement Innovation for Cloud Services in Europe Procurement Innovation for Cloud Services in Europe Author: Bob Jones (CERN) on behalf of the PICSE consortium www.picse.eu/ @PICSEPROCURE Focus: cloud service procurement and the Digital Single Market

More information

Roadmap to a Sustainable Pan-European Certification of EHR Systems A deliverable of the European project EHR-Q TN

Roadmap to a Sustainable Pan-European Certification of EHR Systems A deliverable of the European project EHR-Q TN Roadmap to a Sustainable Pan-European Certification of EHR Systems A deliverable of the European project EHR-Q TN François Wisniewski CRP Henri Tudor SANTEC, Luxembourg Regional Conference: EHR Systems

More information

European Cloud Strategy: trusted cloud and public sector

European Cloud Strategy: trusted cloud and public sector European Cloud Strategy: trusted cloud and public sector At: Symposium 'Cloud for Europe', Churchill College, Møller Study Centre, University of Cambridge, 30 Sept - 1 Oct 2014. Dirk van Rooy, Ph.D. Head

More information

Navigating Cyber Risk Exposure and Insurance. Stephen Wares EMEA Cyber Risk Practice Leader Marsh

Navigating Cyber Risk Exposure and Insurance. Stephen Wares EMEA Cyber Risk Practice Leader Marsh Navigating Cyber Risk Exposure and Insurance Stephen Wares EMEA Cyber Risk Practice Leader Marsh Presentation Format Four Key Questions How important is cyber risk and how should we view the cyber threat?

More information

How To Protect Your Data In The Cloud

How To Protect Your Data In The Cloud Cloud Computing Hot topics in relation to security, liability and privacy Steven De Schrijver Cloud Computing : who and what is involved? Data Cloud Service Provider (e.g. SaaS, PaaS, IaaS) Sub-contractor

More information

AN INSIDE VIEW FROM THE EU EXPERT GROUP ON CLOUD COMPUTING

AN INSIDE VIEW FROM THE EU EXPERT GROUP ON CLOUD COMPUTING AN INSIDE VIEW FROM THE EU EXPERT GROUP ON CLOUD COMPUTING 1. Overview and Background On 27 September 2012, the European Commission adopted a strategy for "Unleashing the potential of cloud computing in

More information

Balancing Discovery with EU Data Protection in International Arbitration Proceedings By Karin Retzer and Sherman Kahn

Balancing Discovery with EU Data Protection in International Arbitration Proceedings By Karin Retzer and Sherman Kahn Balancing Discovery with EU Data Protection in International Arbitration Proceedings By Karin Retzer and Sherman Kahn As many organizations facing cross-border litigation know too well, U.S. discovery

More information

Summary Report Report # 1. Security Challenges of Cross-Border Use of Cloud Services under Special Consideration of ENISA s Contributions

Summary Report Report # 1. Security Challenges of Cross-Border Use of Cloud Services under Special Consideration of ENISA s Contributions Summary Report Report # 1 Security Challenges of Cross-Border Use of Cloud Services under Special Consideration of ENISA s Contributions COINS Summer School 2015 on Could Security Prepared by: Nabeel Ali

More information

COMMISSION STAFF WORKING DOCUMENT. Report on the Implementation of the Communication 'Unleashing the Potential of Cloud Computing in Europe'

COMMISSION STAFF WORKING DOCUMENT. Report on the Implementation of the Communication 'Unleashing the Potential of Cloud Computing in Europe' EUROPEAN COMMISSION Brussels, 2.7.2014 SWD(2014) 214 final COMMISSION STAFF WORKING DOCUMENT Report on the Implementation of the Communication 'Unleashing the Potential of Cloud Computing in Europe' Accompanying

More information

Telemedicine in Europe: Are we Addressing the Right Business Models?

Telemedicine in Europe: Are we Addressing the Right Business Models? EHMA Annual Conference, Birmingham 24-26 June 2014: Leadership healthcare: from bedside to board Telemedicine in Europe: Are we Addressing the Right Business Models? Prof. Luís Velez Lapão MOMEMTUM Team

More information

Europe Offers Incentives to Cloud Computing Growth

Europe Offers Incentives to Cloud Computing Growth 6 November 2012 Europe Offers Incentives to Cloud Computing Growth By Alistair Maughan The European Commission has issued a Communication setting out a road map for the future growth of cloud computing

More information

International ACH: Payment Gateway to Europe

International ACH: Payment Gateway to Europe International ACH: Payment Gateway to Europe Treasury Symposium St. Petersburg Florida Tuesday, January 27 Concurrent Session 16 10:15am 11:30am International ACH: Payment Gateway to Europe Presenters:

More information

Legal Issues Associated with Cloud Computing. Laurin H. Mills May 13, 2009

Legal Issues Associated with Cloud Computing. Laurin H. Mills May 13, 2009 Legal Issues Associated with Cloud Computing Laurin H. Mills May 13, 2009 What Is Cloud Computing? The cloud is a metaphor for the Internet Leverages the connectivity of the Internet to optimize the utility

More information

Personal information, for purposes of this Policy, includes any information which relates to an identified or an identifiable person.

Personal information, for purposes of this Policy, includes any information which relates to an identified or an identifiable person. PART I: INTRODUCTION AND BACKGROUND Purpose This Data Protection Binding Corporate Rules Policy ( Policy ) establishes the approach of Fluor to compliance with European data protection law and specifically

More information

FP7-INFRASTRUCTURES-2012-1. Grant Agreement no. 312845. Scoping Study for a pan-european Geological Data Infrastructure D 5.4

FP7-INFRASTRUCTURES-2012-1. Grant Agreement no. 312845. Scoping Study for a pan-european Geological Data Infrastructure D 5.4 FP7-INFRASTRUCTURES-2012-1 Grant Agreement no. 312845 Scoping Study for a pan-european Geological Data Infrastructure D 5.4 Guidelines on the Legal and Organizational Framework Deliverable number D5.4

More information

PROPERTY CASUALTY INSURANCE REGULATION IN THE UNITED KINGDOM. Richard Spiller, Esq. 011 44 171 556 4541. Introduction

PROPERTY CASUALTY INSURANCE REGULATION IN THE UNITED KINGDOM. Richard Spiller, Esq. 011 44 171 556 4541. Introduction PROPERTY CASUALTY INSURANCE REGULATION IN THE UNITED KINGDOM This article considers: Richard Spiller, Esq. 011 44 171 556 4541 Introduction 1. What activities by an overseas insurer amount to the carrying

More information

Jeanne Kelly, Partner Cloud Computing: The Legal Issues

Jeanne Kelly, Partner Cloud Computing: The Legal Issues Jeanne Kelly, Partner Cloud Computing: The Legal Issues 14 June 2010 One of the things we really need to watch out for is that we don t hold cloud deployment back because we have some storyline about how

More information

e-sens Electronic Simple European Networked Services Rome, 16.10.2015

e-sens Electronic Simple European Networked Services Rome, 16.10.2015 e-sens Electronic Simple European Networked Services Rome, 16.10.2015 e-sens Goal To improve the cross-border access of - citizens - businesses to public services in Europe by provision of interoperable

More information

Data Protection and Cloud Computing: an Overview of the Legal Issues

Data Protection and Cloud Computing: an Overview of the Legal Issues Data Protection and Cloud Computing: an Overview of the Legal Issues Christopher Kuner Partner, Hunton & Williams, Brussels Research Assistant, University of Copenhagen Nordic IT Law Conference Copenhagen,

More information

Assessing Risks in the Cloud

Assessing Risks in the Cloud Assessing Risks in the Cloud Jim Reavis Executive Director Cloud Security Alliance Agenda Definitions of Cloud & Cloud Usage Key Cloud Risks About CSA CSA Guidance approach to Addressing Risks Research

More information

Cloud computing security in the Dutch Government

Cloud computing security in the Dutch Government Cloud computing security in the Dutch Government John van Huijgevoort Senior Security Advisor, NCSC Agenda Introduction History / Process Relation with other ICT-projects Conclusion 1 Introduction: John

More information

Roadmap towards Sustainable Pan- European Certification of EHR System Synthesis of the deliverable of the European project EHR-Q TN

Roadmap towards Sustainable Pan- European Certification of EHR System Synthesis of the deliverable of the European project EHR-Q TN Roadmap towards Sustainable Pan- European Certification of EHR System Synthesis of the deliverable of the European project EHR-Q TN François Wisniewski, Jos Devlies, Icíar Abad CRP Henri Tudor, Luxembourg

More information

CPNI VIEWPOINT 01/2010 CLOUD COMPUTING

CPNI VIEWPOINT 01/2010 CLOUD COMPUTING CPNI VIEWPOINT 01/2010 CLOUD COMPUTING MARCH 2010 Acknowledgements This viewpoint is based upon a research document compiled on behalf of CPNI by Deloitte. The findings presented here have been subjected

More information

th European Pension Funds Congress Introducing an overview of accumulated pension entitlements will help increase the mobility of European citizens 1

th European Pension Funds Congress Introducing an overview of accumulated pension entitlements will help increase the mobility of European citizens 1 8 th th European Pension Funds Congress Frankfurt 19th of November 2013 Titus Sips (APG) Introducing an overview of accumulated pension entitlements will help increase the mobility of European citizens

More information

EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL

EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL Innovation policy Technology for innovation; ICT industries and E-business Brussels, 7 th December 2005 DG ENTR/D4 M 376 - EN STANDARDISATION

More information

ARE THE POINTS OF SINGLE CONTACT TRULY MAKING THINGS EASIER FOR EUROPEAN COMPANIES?

ARE THE POINTS OF SINGLE CONTACT TRULY MAKING THINGS EASIER FOR EUROPEAN COMPANIES? ARE THE POINTS OF SINGLE CONTACT TRULY MAKING THINGS EASIER FOR EUROPEAN COMPANIES? SERVICES DIRECTIVE IMPLEMENTATION REPORT NOVEMBER 2011 EUROPEAN COMPANIES WANT WELL-FUNCTIONING POINTS OF SINGLE CONTACT

More information

The NREN s core activities are in providing network and associated services to its user community that usually comprises:

The NREN s core activities are in providing network and associated services to its user community that usually comprises: 3 NREN and its Users The NREN s core activities are in providing network and associated services to its user community that usually comprises: Higher education institutions and possibly other levels of

More information

Cyber-insurance: Understanding Your Risks

Cyber-insurance: Understanding Your Risks Cyber-insurance: Understanding Your Risks Cyber-insurance represents a complete paradigm shift. The assessment of real risks becomes a critical part of the analysis. This article will seek to provide some

More information

Support USers To Access INformation and Services (Grant Agreement No 297206)

Support USers To Access INformation and Services (Grant Agreement No 297206) Support USers To Access INformation and Services (Grant Agreement No 297206) Deliverable D5.4 Recommendations on security and privacy issues version 3 Version 1.0 Work Package: WP5 Version & Date: v1.0

More information

CCBE GUIDELINES ON THE USE OF CLOUD COMPUTING SERVICES BY LAWYERS

CCBE GUIDELINES ON THE USE OF CLOUD COMPUTING SERVICES BY LAWYERS CCBE GUIDELINES ON THE USE OF CLOUD COMPUTING SERVICES BY LAWYERS CCBE guidelines on the use of cloud computing services by lawyers TABLE OF CONTENTS I. INTRODUCTION... 3 1. Scope of the guidelines...

More information

The NREN cloud strategy should be aligned with the European and national policies, but also with the strategies of the member institutions.

The NREN cloud strategy should be aligned with the European and national policies, but also with the strategies of the member institutions. 4 External influences PESTLE Analysis A PESTLE analysis is a useful tool to support the investigation and decision process relating to cloud services. PESTLE in general covers Political, Economic, Social,

More information

TECHNICAL SPECIFICATION: FEDERATED CERTIFIED SERVICE BROKERAGE OF EU PUBLIC ADMINISTRATION CLOUD

TECHNICAL SPECIFICATION: FEDERATED CERTIFIED SERVICE BROKERAGE OF EU PUBLIC ADMINISTRATION CLOUD REALIZATION OF A RESEARCH AND DEVELOPMENT PROJECT (PRE-COMMERCIAL PROCUREMENT) ON CLOUD FOR EUROPE TECHNICAL SPECIFICATION: FEDERATED CERTIFIED SERVICE BROKERAGE OF EU PUBLIC ADMINISTRATION CLOUD ANNEX

More information

Cloud Governance is more than Security. Cloud Law or Legal Cloud?

Cloud Governance is more than Security. Cloud Law or Legal Cloud? more than Security Cloud Law or Legal Cloud? more than Security Governance principles more than Security Governance principles 1. Context definition Which organisation/ structure? Which roles and responsibilities?

More information

Logging In: Auditing Cybersecurity in an Unsecure World

Logging In: Auditing Cybersecurity in an Unsecure World About This Course Logging In: Auditing Cybersecurity in an Unsecure World Course Description $5.4 million that s the average cost of a data breach to a U.S.-based company. It s no surprise, then, that

More information

OUTSOURCING, HOSTING AND DATA PRIVACY ISSUES

OUTSOURCING, HOSTING AND DATA PRIVACY ISSUES OUTSOURCING, HOSTING AND DATA PRIVACY ISSUES 4 April 2013 James Castro-Edwards Solicitor Monica Salgado Advogada / Portuguese Lawyer OUR TEAM Speechly Bircham is an ambitious, full-service law firm with

More information

Resolution on Consumer Protection in Cloud Computing

Resolution on Consumer Protection in Cloud Computing DOC NO: INFOSOC 46-11 DATE ISSUED: JUNE 2011 Resolution on Consumer Protection in Cloud Computing Consumers, businesses and governments are increasingly using cloud computing services to store and share

More information

Cloud computing Alessandro Galtieri Pavel Klimov Severin Loeffler

Cloud computing Alessandro Galtieri Pavel Klimov Severin Loeffler Cloud computing Alessandro Galtieri, Senior Lawyer, Colt Technology Services, London, UK Pavel Klimov, General Counsel EMEA, Unisys, London, UK Severin Loeffler, Assistant General Counsel, Central Eastern

More information

Demystifying cloud computing for SMEs

Demystifying cloud computing for SMEs Demystifying cloud computing for SMEs Tools & Guides for SMEs moving to the Cloud Silvana Muscella, Founder and CEO Trust-IT Services Ltd s.muscella@trust-itservices.com @silvanamuscella www.cloudwatchhub.eu

More information

HIPAA Privacy and Security Changes in the American Recovery and Reinvestment Act

HIPAA Privacy and Security Changes in the American Recovery and Reinvestment Act International Life Sciences Arbitration Health Industry Alert If you have questions or would like additional information on the material covered in this Alert, please contact the author: Brad M. Rostolsky

More information

The demand of Cloud Computing in Europe: drivers, barriers, market estimates

The demand of Cloud Computing in Europe: drivers, barriers, market estimates The demand of Cloud Computing in Europe: drivers, barriers, market estimates Gabriella Cattaneo Associate VP IDC European Government Consulting Research In Future Cloud Computing workshop Bruxelles, May

More information

Proposal for a DIRECTIVE OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL. on electronic invoicing in public procurement. (Text with EEA relevance)

Proposal for a DIRECTIVE OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL. on electronic invoicing in public procurement. (Text with EEA relevance) EUROPEAN COMMISSION Brussels, 26.6.2013 COM(2013) 449 final 2013/0213 (COD) Proposal for a DIRECTIVE OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on electronic invoicing in public procurement (Text with

More information

WHITE PAPER Meeting European Data Protection and Security Requirements with CipherCloud Solutions

WHITE PAPER Meeting European Data Protection and Security Requirements with CipherCloud Solutions WHITE PAPER Meeting European Data Protection and Security Requirements with CipherCloud Solutions Meeting European Data Protection and Security Requirements with CipherCloud Solutions 2015 1 TABLE OF CONTENTS

More information

IT Vendor Due Diligence. Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014

IT Vendor Due Diligence. Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014 IT Vendor Due Diligence Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014 Carolinas HealthCare System (CHS) Second largest not-for-profit healthcare system

More information

360 o View of. Global Immigration

360 o View of. Global Immigration 360 o View of Global Immigration In a fast moving global economy, remaining compliant with immigration laws, being informed and in control is more challenging than ever before. We are a globally linked

More information

How To Understand The Legal Background Of Cloud Computing

How To Understand The Legal Background Of Cloud Computing BCS Advanced Programming SG 8 November 2012 Cloud Computing The Legal Background Kuan Hon Consultant, Cloud Legal Project Centre for Commercial Law Studies Queen Mary, University of London http://cloudlegalproject.org

More information

Implementation progress of the EASEE-gas Common Business Practices (CBP's)

Implementation progress of the EASEE-gas Common Business Practices (CBP's) 1 Implementation progress of the EASEE-gas Common Business Practices (CBP's) 1. Introduction The European Association for the Streamlining of Energy Exchange-gas, or EASEE-gas, was established on March

More information

Charter of Consumer Rights in the Digital World

Charter of Consumer Rights in the Digital World DOC No: INFOSOC 37 08 DATE ISSUED: MARCH 2008 Charter of Consumer Rights in the Digital World Digital technologies contribute to an improvement in the quality of people s lives in many ways. They create

More information

Binding Corporate Rules ( BCR ) Summary of Third Party Rights

Binding Corporate Rules ( BCR ) Summary of Third Party Rights Binding Corporate Rules ( BCR ) Summary of Third Party Rights This document contains in its Sections 3 9 all provision of the Binding Corporate Rules (BCR) for Siemens Group Companies and Other Adopting

More information

Cloud Service Agreements: Avoiding the Pitfalls of the Cloud as a Commodity. Amy Mushahwar, Esq.

Cloud Service Agreements: Avoiding the Pitfalls of the Cloud as a Commodity. Amy Mushahwar, Esq. Cloud Service Agreements: Avoiding the Pitfalls of the Cloud as a Commodity Amy Mushahwar, Esq. What s New? Not That Much. Some have their heads in the cloud we prefer to stay down in the weeds and know

More information

ROYAL AUSTRALASIAN COLLEGE OF SURGEONS

ROYAL AUSTRALASIAN COLLEGE OF SURGEONS 1. SCOPE This policy details the College s privacy policy and related information handling practices and gives guidelines for access to any personal information retained by the College. This includes personal

More information

Cloud Computing Risks in Financial Services Companies: How Attorneys Can Best Help In An Increasingly SaaS-ified World

Cloud Computing Risks in Financial Services Companies: How Attorneys Can Best Help In An Increasingly SaaS-ified World Cloud Computing Risks in Financial Services Companies: How Attorneys Can Best Help In An Increasingly SaaS-ified World July 30, 2015 Sutherland Webinar Michael Steinig 202.383.0804 Michael.Steinig@sutherland.com

More information

Position Paper: Berlin, 31 March 2014. Legislative intentions to increase IT Security

Position Paper: Berlin, 31 March 2014. Legislative intentions to increase IT Security Position Paper: Berlin, 31 March 2014 Legislative intentions to increase IT Security eco the Association of the sees itself as lobbyist and supporter of all companies that are involved in the economic

More information

EU Regulatory Trends in Data Protection & Cybersecurity What should be on the industry s agenda?

EU Regulatory Trends in Data Protection & Cybersecurity What should be on the industry s agenda? EU Regulatory Trends in Data Protection & Cybersecurity What should be on the industry s agenda? Dr. Jörg Hladjk Counsel European Data Protection & Privacy Practice Hunton & Williams, Brussels Cyber Security

More information

Mutual legal recognition of electronic communications and electronic signatures and paperless trade facilitation: challenges and opportunities

Mutual legal recognition of electronic communications and electronic signatures and paperless trade facilitation: challenges and opportunities Mutual legal recognition of electronic communications and electronic signatures and paperless trade facilitation: challenges and opportunities Luca Castellani Secretary, Working Group IV (Electronic Commerce)

More information

Summary of responses to the public consultation on Cloud computing run by CNIL from October to December 2011 and analysis by CNIL

Summary of responses to the public consultation on Cloud computing run by CNIL from October to December 2011 and analysis by CNIL Summary of responses to the public consultation on Cloud computing run by CNIL from October to December 2011 and analysis by CNIL 1. Definition of Cloud Computing In the public consultation, CNIL defined

More information

Wrapping Audit Arms around the Cloud Georgia 2013 Conference for College and University Auditors

Wrapping Audit Arms around the Cloud Georgia 2013 Conference for College and University Auditors 1 Wrapping Audit Arms around the Cloud Georgia 2013 Conference for College and University Auditors Scott Woodison Executive Director, Compliance and Enterprise Risk Office of Internal Audit and Compliance

More information

Planned Healthcare in Europe for Lothian residents

Planned Healthcare in Europe for Lothian residents Planned Healthcare in Europe for Lothian residents Introduction This leaflet explains what funding you may be entitled to if you normally live in Lothian (Edinburgh, West Lothian, Midlothian and East Lothian

More information

Cloud Computing: Implications and Guidelines for Records Management in Kentucky State Government

Cloud Computing: Implications and Guidelines for Records Management in Kentucky State Government Cloud Computing: Implications and Guidelines for Records Management in Kentucky State Government (Version 1.0 August 2012) Many information technology (IT) departments and resource allocators are considering

More information

Notice of Intent to Fund Project on Occupational Licensing Review and Portability: NOI-ETA-16-14

Notice of Intent to Fund Project on Occupational Licensing Review and Portability: NOI-ETA-16-14 Notice of Intent to Fund Project on Occupational Licensing Review and Portability: NOI-ETA-16-14 I. Description The U.S. Department of Labor s Employment and Training Administration (ETA) intends to award

More information

UNCITRAL legislative standards on electronic communications and electronic signatures: an introduction

UNCITRAL legislative standards on electronic communications and electronic signatures: an introduction legislative standards on electronic communications and electronic signatures: an introduction Luca Castellani Legal Officer secretariat International harmonization of e-commerce law Model Law on Electronic

More information